Logfile of HijackThis v1.99.1
Scan saved at 11:12:31 AM, on 7/30/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\ewido\security suite\ewidoctrl.exe
C:\Program Files\ewido\security suite\ewidoguard.exe
C:\Program Files\Norton AntiVirus\navapsvc.exe
C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\System32\snmp.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\system32\devldr32.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\WINDOWS\GWMDMMSG.exe
C:\Program Files\Common Files\Logitech\QCDriver\LVCOMS.EXE
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
C:\WINDOWS\system32\nmembed.exe
C:\Program Files\AWS\WeatherBug\Weather.exe
C:\WINDOWS\system32\mydtext.exe
C:\Program Files\Messenger\msmsgs.exe
C:\HijackThis\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://websearch.drs...esearch.cgi?id=
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://websearch.drs...esearch.cgi?id=
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://yahoo.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://websearch.drs...esearch.cgi?id=
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://websearch.drs...esearch.cgi?id=
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://websearch.drs...esearch.cgi?id=
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = http://websearch.drs...esearch.cgi?id=
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = websearch.drsnsrch.com/q.cgi?q=
R3 - URLSearchHook: (no name) - {02EE5B04-F144-47BB-83FB-A60BD91B74A9} - C:\Program Files\SurfSideKick 3\SskBho.dll
O2 - BHO: Band Class - {00F1D395-4744-40f0-A611-980F61AE2C59} - C:\WINDOWS\dsr.dll (file missing)
O2 - BHO: Yahoo! Companion BHO - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn1\ycomp5_3_16_0.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: AOL Toolbar Launcher - {7C554162-8CB7-45A4-B8F4-8EA1C75885F9} - C:\Program Files\AOL\AOL Toolbar 2.0\aoltb.dll
O2 - BHO: CNavExtBho Class - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Yahoo! Companion - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn1\ycomp5_3_16_0.dll
O3 - Toolbar: Viewpoint Toolbar - {F8AD5AA5-D966-4667-9DAF-2561D68B2012} - blank (file missing)
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: AOL Toolbar - {DE9C389F-3316-41A7-809B-AA305ED9D922} - C:\Program Files\AOL\AOL Toolbar 2.0\aoltb.dll
O4 - HKLM\..\Run: [Microsoft Works Portfolio] C:\Program Files\Microsoft Works\WksSb.exe /AllUsers
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
O4 - HKLM\..\Run: [GWMDMMSG] GWMDMMSG.exe
O4 - HKLM\..\Run: [GWMDMpi] C:\WINDOWS\GWMDMpi.exe
O4 - HKLM\..\Run: [LVCOMS] C:\Program Files\Common Files\Logitech\QCDriver\LVCOMS.EXE
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [EasyMessage] "C:\Program Files\Zango Messenger\em2.exe" -wait
O4 - HKLM\..\Run: [LogitechGalleryRepair] C:\Program Files\Logitech\ImageStudio\ISStart.exe
O4 - HKLM\..\Run: [LogitechImageStudioTray] C:\Program Files\Logitech\ImageStudio\LogiTray.exe
O4 - HKLM\..\Run: [ViewMgr] C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
O4 - HKLM\..\Run: [AUNPS2] RUNDLL32 AUNPS2.DLL,_Run@16
O4 - HKLM\..\Run: [cfgmgr52] RunDLL32.EXE ,DllRun
O4 - HKLM\..\Run: [Dinst] C:\WINDOWS\dinst.exe
O4 - HKLM\..\Run: [SurfSideKick 3] C:\Program Files\SurfSideKick 3\Ssk.exe
O4 - HKLM\..\Run: [0sFO3nP] nmembed.exe
O4 - HKLM\..\Run: [WinTask driver] C:\WINDOWS\system32\wintask.exe
O4 - HKLM\..\Run: [Media Access] C:\Program Files\Media Access\MediaAccK.exe
O4 - HKLM\..\Run: [lmujew] c:\windows\system32\ordpgyp.exe r
O4 - HKCU\..\Run: [Weather] C:\Program Files\AWS\WeatherBug\Weather.exe 1
O4 - HKCU\..\Run: [Yahoo! Pager] C:\Program Files\Yahoo!\Messenger\ypager.exe -quiet
O4 - HKCU\..\Run: [SurfSideKick 3] C:\Program Files\SurfSideKick 3\Ssk.exe
O4 - HKCU\..\Run: [HBwERhj8S] mydtext.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra button: AOL Toolbar - {3369AF0D-62E9-4bda-8103-B4C75499B578} - C:\Program Files\AOL\AOL Toolbar 2.0\aoltb.dll
O9 - Extra button: Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Messenger\yhexbmes0521.dll
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Messenger\yhexbmes0521.dll
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {04E214E5-63AF-4236-83C6-A7ADCBF9BD02} (HouseCall Control) - http://housecall60.t...all/xscan60.cab
O16 - DPF: {0A5FD7C5-A45C-49FC-ADB5-9952547D5715} (Creative Software AutoUpdate) - http://www.creative....009/CTSUEng.cab
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.syma...bin/AvSniff.cab
O16 - DPF: {3CC943C7-3C99-11D4-8135-0050041A5144} (RunExeActiveX.UserControl1) - hcp://system/RunExeActiveX.CAB
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://v5.windowsupd...b?1095369610819
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.syma...n/bin/cabsa.cab
O16 - DPF: {99CDFD87-F97A-42E1-9C13-D18220D90AD1} (StartFirstControl.CheckFirst) - hcp://system/StartFirstControl.CAB
O16 - DPF: {9B03C5F1-F5AB-47EE-937D-A8EDA626F876} (Anonymizer Anti-Spyware Scanner) - http://download.zone...ctor/WebAAS.cab
O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} (Creative Software AutoUpdate Support Package) - http://www.creative....15009/CTPID.cab
O16 - DPF: {FA3662C3-B8E8-11D6-A667-0010B556D978} (IWinAmpActiveX Class) - http://cdn.digitalci...illama/ampx.cab
O20 - Winlogon Notify: H323TSP - C:\WINDOWS\system32\sqesrv.dll
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido\security suite\ewidoctrl.exe
O23 - Service: ewido security suite guard - ewido networks - C:\Program Files\ewido\security suite\ewidoguard.exe
O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: PictureTaker - LANovation - C:\WINDOWS\system32\PCTKRNT.SYS
O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton AntiVirus\SAVScan.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
---------------------------------------------------------
ewido security suite - Scan report
---------------------------------------------------------
+ Created on: 10:03:11 AM, 7/30/2005
+ Report-Checksum: 57FD908C
+ Scan result:
HKLM\SOFTWARE\AutoLoader -> Spyware.AproposMedia : Cleaned with backup
HKLM\SOFTWARE\AutoLoader\0Fwk1bSQJWaU -> Spyware.AproposMedia : Cleaned with backup
HKLM\SOFTWARE\AutoLoader\0Fwy1bSQJWaU -> Spyware.AproposMedia : Cleaned with backup
HKLM\SOFTWARE\Classes\AppID\BookedSpace.DLL -> Spyware.BookedSpace : Cleaned with backup
HKLM\SOFTWARE\Classes\AppID\{0DC5CD7C-F653-4417-AA43-D457BE3A9622} -> Spyware.BookedSpace : Cleaned with backup
HKLM\SOFTWARE\Classes\BookedSpace.Extension -> Spyware.BookedSpace : Cleaned with backup
HKLM\SOFTWARE\Classes\BookedSpace.Extension\CLSID -> Spyware.BookedSpace : Cleaned with backup
HKLM\SOFTWARE\Classes\BookedSpace.Extension\CurVer -> Spyware.BookedSpace : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{0019C3E2-DD48-4A6D-ABCD-8D32436323D9} -> Spyware.BookedSpace : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{2B96D5CC-C5B5-49A5-A69D-CC0A30F9028C} -> Spyware.MiniBug : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{9F95F736-0F62-4214-A4B4-CAA6738D4C07} -> Spyware.SaveNow : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{B5AB638F-D76C-415B-A8F2-F3CEAC502212} -> Spyware.AproposMedia : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{BC333116-6EA1-40A1-9D07-ECB192DB8CEA} -> Spyware.AproposMedia : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{05080E6B-A88A-4CFD-8C3D-9B2557670B6E} -> Spyware.BookedSpace : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{BC333116-6EA1-40A1-9D07-ECB192DB8CEA} -> Spyware.AproposMedia : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{C285D18D-43A2-4AEF-83FB-BF280E660A97} -> Spyware.SaveNow : Cleaned with backup
HKLM\SOFTWARE\Classes\TypeLib\{0DC5CD7C-F653-4417-AA43-D457BE3A9622} -> Spyware.BookedSpace : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0019C3E2-DD48-4A6D-ABCD-8D32436323D9} -> Spyware.BookedSpace : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\RelevantKnowledge -> Spyware.BroadCastPC : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Surf SideKick -> Spyware.SurfSide : Cleaned with backup
HKU\S-1-5-21-602162358-1202660629-854245398-1005\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{0019C3E2-DD48-4A6D-ABCD-8D32436323D9} -> Spyware.BookedSpace : Cleaned with backup
HKU\S-1-5-21-602162358-1202660629-854245398-1005\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{016235BE-59D4-4CEB-ADD5-E2378282A1D9} -> Spyware.AproposMedia : Cleaned with backup
HKU\S-1-5-21-602162358-1202660629-854245398-1005\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AEECBFDA-12FA-4881-BDCE-8C3E1CE4B344} -> Spyware.BargainBuddy : Cleaned with backup
HKU\S-1-5-21-602162358-1202660629-854245398-1005\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{CE188402-6EE7-4022-8868-AB25173A3E14} -> Spyware.BargainBuddy : Cleaned with backup
HKU\S-1-5-21-602162358-1202660629-854245398-1005\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F4E04583-354E-4076-BE7D-ED6A80FD66DA} -> Spyware.BargainBuddy : Cleaned with backup
[1756] C:\Program Files\SurfSideKick 3\SskBho.dll -> Spyware.SurfSide : Cleaned with backup
[1644] C:\WINDOWS\system32\AUNPS2.DLL -> Spyware.Hijacker.Generic : Error during cleaning
[2976] C:\WINDOWS\cfgmgr52.dll -> Spyware.BookedSpace : Error during cleaning
C:\Documents and Settings\Kelly\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\counter.jpg-2233a5cb-67577007.zip/Gummy.class -> Trojan.Java.Femad : Cleaned with backup
C:\Documents and Settings\Kelly\Local Settings\Temp\temp.fr14DF\MediaAccess.exe -> Spyware.WinAD : Cleaned with backup
C:\Program Files\AWS\WeatherBug\MiniBugTransporter.dll -> Spyware.Wheaterbug : Cleaned with backup
C:\Program Files\CasStub\casstub.exe -> TrojanDownloader.Agent.qg : Cleaned with backup
C:\Program Files\SurfSideKick 3\Ssk.exe -> Spyware.SurfSide : Cleaned with backup
C:\Program Files\SurfSideKick 3\SskBho.dll -> Spyware.SurfSide : Cleaned with backup
C:\Program Files\SurfSideKick 3\SskCore.dll -> Spyware.SurfSide : Cleaned with backup
C:\WINDOWS\AuroraHandler.dll -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\azvmmrnt.exe -> Spyware.BookedSpace : Cleaned with backup
C:\WINDOWS\dsr.exe -> Trojan.Imiserv.c : Cleaned with backup
C:\WINDOWS\Nail.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\NDNuninstall6_38.exe -> Spyware.NewDotNet : Cleaned with backup
C:\WINDOWS\ru.exe -> Spyware.PurityScan : Cleaned with backup
C:\WINDOWS\system\UpdInst.exe -> Spyware.Look2Me : Cleaned with backup
C:\WINDOWS\system32\bbtfgk.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\bhzujwb.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\brghom.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\bsoskdg.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\btzayt.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\bvzdli.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\bwjaiju.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\cbraxs.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\ckatbz.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\covabq.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\cqinbq.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\cszjgio.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\datorfy.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\DrPMon.dll -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\eodfkn.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\eryelo.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\feidrx.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\fkhebf.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\fnwvblv.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\fpclxe.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\fpdjxjm.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\gjctal.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\gjobzkr.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\gkzwyyf.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\glzvnir.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\hfdnxzx.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\hfvckq.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\hwfscwo.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\ijylpzs.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\ikityrd.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\ilcvnka.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\ioqgcyj.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\jbqatz.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\jgcekol.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\jhyxhl.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\jlkocj.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\jomviqs.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\jotcqw.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\jrckei.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\jrkktu.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\kgpiidk.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\kgzmql.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\kksbnpk.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\knziif.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\ktgylh.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\kvejoa.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\lhnkmxf.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\lkfatjq.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\loyedu.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\lxppek.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\lyrzyz.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\lyyktzf.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\mcoama.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\mdejvof.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\mibdfkl.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\mijgwf.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\mivene.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\mmicrl.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\mppjcmk.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\mrqapp.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\mvjxkmd.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\mzcgtd.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\namiomk.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\njybgl.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\nojgdfv.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\nqvdgkz.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\nsofuf.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\nzzfrb.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\ogdors.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\okcfsq.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\opgmkwi.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\oqcpwkh.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\ordpgyp.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\pdhznj.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\periql.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\pntphl.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\PopOops.dll_tobedeleted -> Spyware.VirtualBouncer : Cleaned with backup
C:\WINDOWS\system32\PopOops2.dll_tobedeleted -> Spyware.VirtualBouncer : Cleaned with backup
C:\WINDOWS\system32\qaavqjl.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\qbdcmui.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\qcvajy.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\qexvec.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\qjibkvf.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\qkdgoi.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\qkrqlt.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\qkuvod.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\qtcaqf.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\qvwveb.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\qvzpmj.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\raibgs.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\rblqip.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\renrsv.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\riawrfu.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\rikaih.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\rjhiqnc.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\rnumdg.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\rrokdn.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\rtavooc.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\ruiioav.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\rvxmcl.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\rywkjhv.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\sblwdnk.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\sjucihj.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\skgemn.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\sonfkz.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\tagdgqs.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\tanlgc.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\thvhtj.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\tllqfry.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\tukaso.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\ucchll.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\ucwouuy.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\uknlzae.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\uptfck.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\vhhyprb.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\vwifto.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\vzckouw.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\wbbtpmh.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\widytjc.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\wrtjjkk.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\wydkbsx.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\xgokugv.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\xgsredo.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\xsldlsa.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\yfqlpua.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\ygajzz.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\yniigr.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\yvogvbv.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\ywmoezq.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\znkgejo.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\zpojvhh.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\zrgcnt.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\zydftgh.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\system32\__delete_on_reboot__AUNPS2.DLL -> Spyware.Hijacker.Generic : Cleaned with backup
C:\WINDOWS\system32\__delete_on_reboot__txxtme.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\__delete_on_reboot__cfgmgr52.dll -> Spyware.BookedSpace : Cleaned with backup
C:\zeee.exe -> TrojanDropper.Agent.mm : Cleaned with backup
::Report End